PT-2026-57080 · Zhayujie · Cowagent

·

CVE-2026-15332

·

Published

2026-07-10

·

Updated

2026-07-10

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions zhayujie CowAgent versions prior to 2.1.1
Description A security flaw in the Message Endpoint component, specifically within an unknown function of the channel/channel.py file, allows for missing authorization. This issue enables a remote attacker to perform unauthorized actions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Incorrect Authorization

Missing Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-15332

Affected Products

Cowagent